Tüm alıştırma soruları
2232 soru
Place the following steps of a phishing reporting and human risk management workflow in the correct chronological order, from initial end-user detection to awareness program refinement.
Öğeleri doğru sıraya koymak için sürükleyin
An organization is evaluating its compliance obligations across several distinct operational domains. Match each regulatory framework or standard on the left with its corresponding primary compliance mandate or protected data scope on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A retail organization completes a Business Impact Analysis (BIA) for its cloud-hosted Point-of-Sale (POS) transaction ingestion service. The BIA establishes a maximum acceptable data loss timeframe of 30 minutes and a maximum allowable service downtime of 4 hours. The disaster recovery team proposes updating off-site database replicas every 15 minutes while utilizing a cold recovery site that requires 6 hours to bring online. Which of the following best evaluates this proposed recovery strategy against the established BIA metrics?
A security monitoring system triggers a high-severity alert showing that an internal corporate workstation initiated an unsolicited Server Message Block (SMB) connection attempt to an internal low-interaction deception host (honeypot). Which of the following best describes the security role of this alert and the immediate action the analyst should take?
Match each business continuity metric on the left with its corresponding operational description established during a Business Impact Analysis (BIA) on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A municipal public safety agency completes a Business Impact Analysis (BIA) for its automated emergency computer-aided dispatch system. The analysis determines that the agency can tolerate a maximum data loss of 5 minutes of call records during an unexpected database disruption. Additionally, the overall emergency dispatch service must be restored and operational within 4 hours to prevent severe operational breakdown. Which of the following choices correctly categorizes these two business continuity thresholds?
An aerospace engineering firm is updating its data governance framework for a repository containing proprietary aircraft blueprints and telemetry logs. The enterprise security team must clearly delineate operational execution tasks from high-level business accountability. Which of the following activities represent the primary responsibilities of a Data Custodian? (Select TWO.)
Geçerli olan tümünü seçin
An enterprise risk and compliance officer is updating the organization's regulatory tracking matrix across specialized business sectors and global jurisdictions. Match each regulatory framework or legal mandate on the left with its primary governance scope and compliance requirement on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An enterprise security team needs to remediate a critical zero-day vulnerability in a high-throughput API gateway fleet supporting real-time financial transactions. To ensure system stability and regulatory compliance, the team must execute a structured patch and configuration management workflow. In what sequence should the security team perform the following operational steps from first to last?
Öğeleri doğru sıraya koymak için sürükleyin
Match each Service Organization Control (SOC) audit report type with its primary operational purpose.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An enterprise organization is replacing its legacy perimeter-based defenses with a Zero Trust Architecture (ZTA) across its internal API microservices. Currently, services authenticate once at session initiation and receive unrestricted inter-service communication permissions across the internal subnet. Which design change must the security team implement to adhere to core Zero Trust principles?
An enterprise organization is modernizing its security framework by implementing Zero Trust Architecture (ZTA) principles across its hybrid multi-cloud infrastructure. To validate the deployment, the lead security architect must map foundational Zero Trust principles to their specific technical operational mechanisms. Match each Zero Trust Architecture principle on the left with its correct technical implementation mechanism on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A lead security analyst is designing a vulnerability assessment strategy for an operational technology segment that hosts legacy embedded web services. Previous active credentialed vulnerability scans caused several legacy daemons to crash, resulting in unexpected system downtime. The analyst must establish continuous monitoring to identify unpatched vulnerabilities and service misconfigurations across this segment without transmitting synthetic packets that could disrupt host stability. Which of the following security assessment methods best fulfills these operational requirements?
A security architecture team is designing an active defense strategy to detect threat actors performing lateral movement within a cloud-hybrid network. The team specifically wants to plant decoy authentication credentials into workstation memory and local caches so that any credential dumping attempt immediately generates high-fidelity alerts without exposing production directory services. Which of the following deception technologies best fulfills this operational requirement?
A lead security analyst is evaluating security testing methods for a critical financial application hosted in an enterprise cloud environment. During a credentialed automated vulnerability scan, an unauthenticated web endpoint was flagged as potentially vulnerable to blind SQL injection; however, the scanner report notes a potential false positive due to non-standard HTTP response headers. The analyst must safely validate whether this security finding is a true positive without impacting production database performance or altering production data records. Which of the following is the most appropriate assessment methodology to accomplish this goal?
A security analyst is preparing to perform a vulnerability assessment on an isolated network segment containing legacy Point-of-Sale (POS) devices. During a prior assessment, aggressive network probes caused service outages on several legacy terminals. The analyst must obtain an accurate vulnerability report for audit compliance while preventing system instability. Which of the following scanning approaches should the analyst implement?
An enterprise healthcare network is designing its disaster recovery architecture for an intensive care telemedicine system. The system requires near-zero data loss tolerance due to continuous patient data telemetry. The engineering plan specifies synchronous database snapshotting every 5 minutes to a secondary region and an automated infrastructure deployment playbook that restores full patient monitoring service within 30 minutes of a primary site disaster. Which of the following statements correctly evaluate the organization's business impact analysis metrics and business continuity strategy for this deployment? (Select TWO.)
Geçerli olan tümünü seçin
A security engineer is updating the cryptographic configuration of an internal API gateway to enhance session transport security. The new security baseline requires providing Perfect Forward Secrecy (PFS) for key establishment and guaranteeing message authentication and integrity for incoming payload headers. Which TWO cryptographic mechanisms or algorithms should the security engineer implement to satisfy these requirements?
Geçerli olan tümünü seçin
An organization is preparing to engage a third-party managed service provider (MSP) to handle sensitive customer data archiving and off-site backup management. As part of the enterprise third-party risk management (TPRM) governance program, the security team must implement controls that verify operational effectiveness over time and guarantee access for compliance verification. Which TWO of the following requirements should be included in the vendor oversight framework?
Geçerli olan tümünü seçin
An enterprise risk assessment team is categorizing threat entities involved in recent cyber incidents across various critical sectors. Match each incident narrative detailing specific adversary attributes, resources, and attack vectors on the left to the corresponding threat actor classification on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler